CVE Database

48241+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-82463
8.1 HIGH

pac4j-core before 6.5.6 contains an authentication bypass vulnerability in CheckProfileTypeAuthorizer that reverses the profile type validation logic. Attackers can authenticate through a weaker client and …

Aug 29, 2026
CVE-2026-82461
8.1 HIGH

pac4j-oidc before 6.5.6 fails to verify access token signatures, issuers, audiences, or expiry when extracting Keycloak realm and client roles. Attackers can forge access tokens …

Aug 29, 2026
CVE-2026-82457
7.8 HIGH

su-exec through 0.3 fails to validate numeric user and group identifiers parsed with strtol before assigning to uid_t and gid_t, allowing truncation of out-of-range values …

Aug 29, 2026
CVE-2026-82455
7.1 HIGH

RubyGems fails to re-validate path containment after filesystem symlink resolution during gem extraction. When a pre-existing symlink inside the destination directory points outside the extraction …

Aug 29, 2026
CVE-2026-82453
7.5 HIGH

rust-iot-platform through commit 5df942ab stores user passwords in cleartext without hashing in the user model. Attackers can read API responses from user retrieval and listing …

Aug 29, 2026
CVE-2026-82450
8.8 HIGH

BookStack before 26.05.4 contains a remote code execution vulnerability in the portable ZIP import functionality that allows users with Import Content and Create Books permissions …

Aug 29, 2026
CVE-2026-82447
8.8 HIGH

Skyvern before 1.0.45 contains a sandbox escape vulnerability in TextPromptBlock that renders prompts twice, first through a sandboxed Jinja environment and then through an unsandboxed …

Aug 29, 2026
CVE-2026-77007
7.5 HIGH

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not perform any authorisation check on one of its REST API routes, allowing …

Aug 29, 2026
CVE-2026-76586
7.5 HIGH

The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin before 1.6.3 does not verify the amount actually paid against the server-side price staged for …

Aug 29, 2026
CVE-2026-76548
8.2 HIGH

The User Profile Builder WordPress plugin before 4.0.1 does not properly restrict its front-end file upload feature, granting unauthenticated visitors capabilities reserved to privileged roles. …

Aug 29, 2026
CVE-2026-16600
7.7 HIGH

The SmartAIPress WordPress plugin through 1.2.0 does not perform a capability check on one of its AJAX actions and does not validate a user-supplied URL …

Aug 29, 2026
CVE-2026-16061
8.6 HIGH

The Rest Routes WordPress plugin through 5.5.5 does not sanitize and validate a value taken from the URL of one of its public REST routes …

Aug 29, 2026
CVE-2026-41012
7.7 HIGH

Traffic interception vulnerability in BOSH Director vCenter CPI allows attackers positioned between BOSH Director and vCenter to impersonate vCenter REST API and capture administrator credentials …

Aug 29, 2026
CVE-2026-55848
8.6 HIGH

mapfish-print is a component of MapFish for printing templated cartographic maps. Prior to 3.28.30, 3.30.32, 3.31.24, 3.33.16, and 4.0.5, MapFish Print accepts an attacker-controlled GML …

Aug 28, 2026
CVE-2026-55841
7.5 HIGH

Graylog is a free and open log management platform. Prior to Graylog Server versions 6.3.12, 7.0.7, and 7.1.2 and Graylog Forwarder version 7.3, the FortiGate …

Aug 28, 2026
CVE-2026-55784
7.5 HIGH

free5GC is an open-source implementation of the 5G core network. In version 1.4.4 and earlier, the AUSF component stores per-subscriber authentication state in a global …

Aug 28, 2026
CVE-2026-82333
7.5 HIGH

multer is a middleware for handling multipart/form-data in Node.js. A small multipart request with two specially crafted text field names can make multer's field parser …

Aug 28, 2026
CVE-2026-82017
7.6 HIGH

IGEL OS 12 before 12.7.6 and IGEL OS 11 before 11.11.150 contain a boot registry parameter injection vulnerability that allows attackers with physical access to …

Aug 28, 2026
CVE-2026-81533
7.1 HIGH

An application using the MongoDB BI Connector ODBC Driver may encounter a memory-safety issue when a submitted SQL statement contains an unusually long run of …

Aug 28, 2026
CVE-2026-81532
8.8 HIGH

A user able to submit SQL through an application using the MongoDB Connector for BI ODBC driver can supply a positioned-cursor statement whose cursor name …

Aug 28, 2026
CVE-2026-81520
7.5 HIGH

A network-reachable client that has not yet authenticated can hold a MongoDB Connector for BI authentication session open indefinitely by beginning a SASL-based login exchange …

Aug 28, 2026
CVE-2026-81518
7.5 HIGH

When mongosqld is configured with a client certificate authority file, the listener requests a client certificate during the TLS handshake but does not require one, …

Aug 28, 2026
CVE-2026-81517
7.5 HIGH

An unauthenticated party able to reach the port of a MongoDB Connector for BI (mongosqld) instance may generate enough routine connection log activity to exhaust …

Aug 28, 2026
CVE-2026-81490
7.7 HIGH

A database user able to create a view in a namespace that MongoDB Connector for BI samples can cause the schema-sampling routine to stop functioning …

Aug 28, 2026
CVE-2026-77078
7.5 HIGH

multer is a middleware for handling multipart/form-data in Node.js. A small multipart request containing two specially crafted text field names can cause an uncaught RangeError …

Aug 28, 2026
CVE-2026-77037
7.5 HIGH

multer is a middleware for handling multipart/form-data in Node.js. In version 2.2.0, when a disk-backed upload is aborted or truncated before the write stream finishes, …

Aug 28, 2026
CVE-2026-51662
7.5 HIGH

Incorrect access control in the getCloudSrvCheckStatus function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain cloud firmware check status information via sending a crafted …

Aug 28, 2026
CVE-2026-18904
8.2 HIGH

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to obtain sensitive information and inject unauthorized messages due to a namespace collision between …

Aug 28, 2026
CVE-2026-18899
7.5 HIGH

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to read arbitrary files due to path traversal.

Aug 28, 2026
CVE-2026-18891
8.2 HIGH

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary flows and access sensitive information due to improper authentication.

Aug 28, 2026
CVE-2026-18729
8.8 HIGH

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execute arbitrary code due to improper control of generation of code.

Aug 28, 2026
CVE-2026-17203
7.5 HIGH

IBM Administration Runtime Expert for i 1R1M0 could allow a remote authenticated attacker to obtain sensitive information due to improper authentication enforcement.

Aug 28, 2026
CVE-2026-16821
7.0 HIGH

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to a format string vulnerability.

Aug 28, 2026
CVE-2026-82291
8.1 HIGH

HeyForm before 3.0.0-rc.8 reflects the request Origin header in CORS responses while allowing credentials, enabling cross-origin requests with authentication. Attackers can execute authenticated GraphQL queries …

Aug 28, 2026
CVE-2026-82289
7.4 HIGH

Gitingest through 0.3.1 fails to properly validate hostnames in _validate_host, accepting any host with a git., gitlab., or github. prefix regardless of known-hosts list membership. …

Aug 28, 2026
CVE-2026-82288
7.5 HIGH

Stable Diffusion WebUI through 1.10.1 contains a credential disclosure vulnerability in the /sdapi/v1/cmd-flags endpoint that returns parsed command-line arguments including gradio_auth and api_auth values in …

Aug 28, 2026
CVE-2026-82287
8.1 HIGH

Rybbit before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin restrictions by reflecting any request origin in Access-Control-Allow-Origin responses while credentials …

Aug 28, 2026
CVE-2026-82286
8.6 HIGH

gpt-crawler through 1.5.1 fails to validate the outputFileName parameter in the POST /crawl endpoint, allowing unauthenticated attackers to write arbitrary files to any filesystem path. …

Aug 28, 2026
CVE-2026-82285
8.2 HIGH

bisheng through 2.6.0-fix2 contains a server-side request forgery vulnerability in the POST /api/v1/workflow/report/callback endpoint that lacks authentication and applies no URL scheme restrictions or host …

Aug 28, 2026
CVE-2026-82284
8.1 HIGH

Quivr versions through 0.0.322 fail to validate chat ownership in the GET /chat/{chat_id}/history, DELETE /chat/{chat_id}, and POST /chat/{chat_id}/question/answer endpoints. Authenticated attackers can read other users' …

Aug 28, 2026
CVE-2026-82283
8.1 HIGH

VoltAgent through 2.1.20 fails to validate conversation ownership in memory API handlers, allowing authenticated users to access other users' conversations. Attackers can read, modify, and …

Aug 28, 2026
CVE-2026-82282
8.0 HIGH

Atlantis through 0.47.1 fails to authenticate the /github-app/setup endpoint, allowing unauthenticated attackers to access GitHub App credentials. Attackers can observe or intercept the GitHub redirect …

Aug 28, 2026
CVE-2026-82281
7.4 HIGH

Kotaemon through 0.12.0 fails to properly validate conversation ownership in select_conv, delete_conv, rename_conv, and on_set_public_conversation functions in control.py. Attackers can read other users' chat histories, …

Aug 28, 2026
CVE-2026-82280
7.1 HIGH

Quivr through 0.0.322 fails to validate ownership in prompt endpoints, allowing authenticated users to modify any prompt by identifier. Attackers with read-only access to shared …

Aug 28, 2026
CVE-2026-82279
8.1 HIGH

HyperDX through 1.10.1 fails to enforce role-based access controls in team management endpoints, allowing any team member to perform administrative actions. Attackers can delete team …

Aug 28, 2026
CVE-2026-82278
8.8 HIGH

BISHENG before 2.6.0 contains a remote code execution vulnerability in the workflow run_once endpoint that allows authenticated users to execute arbitrary Python code. Attackers can …

Aug 28, 2026
CVE-2026-82275
7.5 HIGH

Qwen-Agent through 0.0.34 contains a path traversal vulnerability in the document parser that fails to restrict file access to intended directories. Attackers can supply absolute …

Aug 28, 2026
CVE-2026-82270
7.5 HIGH

Portkey AI Gateway through 1.15.2 contains a server-side request forgery vulnerability in the /v1/proxy/* route that lacks requestValidator middleware. Attackers can set the x-portkey-custom-host header …

Aug 28, 2026
CVE-2026-82269
8.1 HIGH

Gophish through 0.12.1 fails to enforce account lockout and password change requirements in the API authentication middleware. Attackers with valid API keys can bypass these …

Aug 28, 2026
CVE-2026-82268
7.5 HIGH

Qwen-Agent through 0.0.34 contains a server-side request forgery vulnerability in the document parsing path that treats caller-supplied paths as URLs without scheme restriction or host …

Aug 28, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.